cyber
CVE-2026-59822 — BerriAI LiteLLM Improper Authentication Vulnerability
BerriAI LiteLLM contains an improper authentication vulnerability in the MCP Streamable HTTP endpoint that could allow an unauthenticated attacker to establish an authenticated MCP session using an arbitrary Bearer token.
Reported by CISA KEV
Read the complete report at CISA KEV ↗
Verification notice
IntelMap indexes open-source reporting. This page identifies what a source reported; it does not independently confirm the claim.
1 recorded state
Signal first indexedP3 · 98% quality · 1 source